Senior Data Engineer (Cyber Threat Feeds and Taxonomies) for NATO with security clearance

WLG
Bergen, Belgium
3 days ago
Apply on www.adzuna.be
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

PHP (Programming Language) Data Analysis Data Deduplication Information Engineering Python (Programming Language) Open Source Technology Scripting Cyber Threat Analysis Software Coding Splunk Data Pipelines User Administration

Job description

  • Designing, building and maintaining the pipelines that ingest threat information from a wide range of sources
  • Developing and maintaining Python scripts that automate the platform and integrate it with the systems around it, including security monitoring and detection
  • Defining, documenting and implementing the rules by which information is disseminated
  • Supporting the work around threat-information process management
  • Normalising heterogeneous feed structures into one consistent schema
  • Enforcing data quality - deduplication, confidence scoring, indicator lifecycle, provenance, and tracking and filtering the low-quality sources
  • Contributing to and integrating existing cyber threat information standards
  • Creating and maintaining the documentation on the taxonomies and galaxies people actually use
  • Writing and keeping current the best-practice guidance for data entry
  • Being the expert the internal communities come to on curation and dissemination options - what each one buys them and what it costs
  • Supporting the user community - regular feedback normally, daily feedback during exercises
  • Leading a team of platform operators during exercises, covering information flow, quality control and user management
  • Planning, preparing and delivering online training, and helping build the individual training packages that prove the objectives were met

Requirements

  • At least ten years of practical experience across the areas below
  • Designing, building and managing data pipelines - transformation, data models, schemas, metadata and workload management
  • Supporting, leading or managing data-focused operations and projects, using data engineering tooling behind data science, analytics and visualisation
  • Python scripting
  • A good grasp of security principles, practice, concepts and technology
  • The ability to work alone and in a team
  • Excellent organisation, communication and writing
  • Professional English
  • A bachelor’s degree in a related discipline with three years of related experience - or, exceptionally, ten years of progressive expertise in this kind of work

Nice to have

  • The platform’s own core format, and STIX
  • Work as a cyber threat intelligence analyst, or as an incident responder
  • Splunk
  • Handling cyber threat information at scale
  • Work with open-source communities, and multinational cyber exercises
  • Administering a threat-sharing platform, or writing code for one in Python or PHP

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.be
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:48 min

Automating exploratory data analysis within training pipelines

Dora Petrella · World Congress 2023

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:36 min

Performing exploratory data analysis to uncover underlying patterns

Julian Joseph · LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

Videos

See all

Related articles

See all